South Korea’s privacy regulator said on Thursday (June 11) that the country will fine e-commerce giant Coupang 625 billion won ($409.30 million) over a massive leak of customer information last year and illegal collection of personal information, in the country’s largest data breach penalty on a company.
The Personal Information Protectin Commission said the New York-listed company had leaked personal data of more than 33 million customers and failed to detect the breach within the 72 hours required by the law.
By infosecbulletin
/ Sunday , July 26 2026
PentesterFlow is a new open-source AI tool for command lines. It is made for penetration testers and bug bounty hunters....
Read More
By infosecbulletin
/ Sunday , July 26 2026
A famous AI red team expert claimed developing a universal jailbreak that can work against top large language models, like...
Read More
By infosecbulletin
/ Saturday , July 25 2026
A new study from Beacom College shows that all automation scripts produced by top AI models like ChatGPT, Microsoft Copilot,...
Read More
By infosecbulletin
/ Saturday , July 25 2026
Origin Energy Limited, a major energy provider in Australia, has said there was a cybersecurity issue with unauthorized access to...
Read More
By infosecbulletin
/ Thursday , July 23 2026
Anthropic launched the Claude Security plugin in beta. This tool uses AI to find serious security flaws in Claude Code....
Read More
By infosecbulletin
/ Thursday , July 23 2026
ASUS has put out important security updates for a serious router flaw. This issue could let remote hackers run any...
Read More
By infosecbulletin
/ Thursday , July 23 2026
SolarWinds has shared important security updates for its Serv-U file transfer software. These updates fix 15 problems that could let...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
Oracle has fixed over 1,400 security holes in its July 2026 Critical Patch Update (CPU). Most of these flaws were...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
Zimbra has launched updates to fix serious security flaws, including a command injection bug in the SNMP monitoring part. As...
Read More
By infosecbulletin
/ Wednesday , July 22 2026
The Qilin ransomware group is exploiting a flaw in PAN-OS GlobalProtect to break into victims' networks, says the cybersecurity firm...
Read More
“This accident occurred due to Coupang’s lack of safety measures and systems, not sophisticated hacking,” Song Kyung-hee, the chairperson of the privacy regulator, told a briefing on Thursday.
“We have decided to impose a total of 624.68 billion won in fines … on Coupang for violating safety obligations and collecting personal data without legal grounds,” a Personal Information Protection Commission statement said.
“Inadequate basic safeguards, including poor management of authentication signing keys and lax access controls” resulted in the personal data of around 37.5 million users being exposed, the commission said.
The fine amounts to 1.4% of Coupang’s revenue of 45 trillion won in 2025, according to Reuters’ calculation. After the fine was announced, Coupang apologised for having caused concern to the public and its customers.
However, the company said that “we regret that our proactive measures to prevent secondary harm from last year’s data leak incident, as well as our explanations based on clear facts, were not sufficiently reflected” in the regulator’s decision.
ShinyHunters claim stolen data from 100+ org via oracle PeopleSoft servers